EIP-2026-111674
PRE-CVERamui Web Hosting Directory Script 4.0 - Remote File Inclusion
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-111674. PoCs published by bd0rk.
AI-analyzed exploit summary The exploit describes a Remote File Include (RFI) vulnerability in Ramui web hosting directory script 4.0, where the `$root` parameter in the `connection.php` constructor is not validated before being used in an `include` statement. This allows an attacker to include arbitrary remote files by manipulating the `root` parameter.
Description
Ramui Web Hosting Directory Script 4.0 - Remote File Inclusion
Exploits (1)
The exploit describes a Remote File Include (RFI) vulnerability in Ramui web hosting directory script 4.0, where the `$root` parameter in the `connection.php` constructor is not validated before being used in an `include` statement. This allows an attacker to include arbitrary remote files by manipulating the `root` parameter.